We have a legacy system which presents a REST API that has Basic Authentication / this API has so far only been accessible from within our private network.
We've been asked to make this API available publicly. However, our InfoSec team have a ruleā¦